Project

General

Profile

Actions

Bug #103592

closed

Do not log TYPO3\CMS\Extbase\Security\Exception\InvalidHashException

Added by Christoph Lehmann 8 months ago. Updated 5 months ago.

Status:
Closed
Priority:
Should have
Assignee:
-
Category:
-
Target version:
-
Start date:
2024-04-10
Due date:
% Done:

100%

Estimated time:
TYPO3 Version:
12
PHP Version:
Tags:
Complexity:
Is Regression:
Sprint Focus:

Description

The Exception code 1320830018 should be excluded in https://github.com/TYPO3/typo3/blob/v12.4.14/typo3/sysext/core/Classes/Error/AbstractExceptionHandler.php#L53

Stacktrace

Request body

{
__referrer: {
@action: index, 
@controller: Events, 
@extension: AnyExtension, 
@request: (select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/, 
arguments: YTo0OntzOjY6ImFjdGlvbiI7czo1OiJpbmRleCI7czoxMDoiY29udHJvbGxlciI7czo2OiJFdmVudHMiO3M6NzoiZW5kRGF0ZSI7czo4OiIyMDI0MDQyMCI7czo5OiJzdGFydERhdGUiO3M6MTM6IjIwMjQwNDIwLTAwMDAiO30=6adc434423485f8f083a318adaaafc183857721c
}, 
__trustedProperties: {"startDateLayer":1,"startDate":1,"endDateLayer":1,"endDate":1,"categoryUids":[1,1,1,1,1,1],"searchPhrase":1,"location":1,"startTime":1,"longitude":1,"latitude":1,"distance":1,"search":1}15951ba6a4b0fec2eaf4e69a971b5fc51f150a79, 
categoryUids: [
67
], 
distance: 3, 
endDate: 01/01/1967, 
endDateLayer: 20.04.2024, 
latitude: 39.7817, 
location: 1, 
longitude: -89.6501, 
search: , 
searchPhrase: the, 
startDate: 01/01/1967, 
startDateLayer: 20.04.2024, 
startTime: 0
}

Files

Actions #1

Updated by Christoph Lehmann 8 months ago

  • Description updated (diff)
Actions #2

Updated by Torben Hansen 8 months ago

Note: This class has been deprecated with v13 and the new TYPO3\CMS\Core\Crypto\HashService now holds the functionality. So is we prevent logging the the exception with the code 1320830018, we must also prevent logging of the exception with the code 1704454157

Actions #3

Updated by Gerrit Code Review 7 months ago

  • Status changed from New to Under Review

Patch set 1 for branch main of project Packages/TYPO3.CMS has been pushed to the review server.
It is available at https://review.typo3.org/c/Packages/TYPO3.CMS/+/83774

Actions #4

Updated by Gerrit Code Review 7 months ago

Patch set 2 for branch main of project Packages/TYPO3.CMS has been pushed to the review server.
It is available at https://review.typo3.org/c/Packages/TYPO3.CMS/+/83774

Actions #5

Updated by Gerrit Code Review 7 months ago

Patch set 1 for branch 12.4 of project Packages/TYPO3.CMS has been pushed to the review server.
It is available at https://review.typo3.org/c/Packages/TYPO3.CMS/+/83833

Actions #6

Updated by Torben Hansen 7 months ago

  • Status changed from Under Review to Resolved
  • % Done changed from 0 to 100
Actions #7

Updated by Benni Mack 5 months ago

  • Status changed from Resolved to Closed
Actions

Also available in: Atom PDF